# create new
[DEFAULT]
state_path = /var/lib/nova
enabled_apis = osapi_compute,metadata
log_dir = /var/log/nova
# RabbitMQ connection info
# transport_url = rabbit://openstack:password@dlp.srv.world
transport_url = rabbit://openstack:{{ service_password }}@{{ openstack_master_ip }}:5672
vif_plugging_is_fatal = True
vif_plugging_timeout = 300

[api]
auth_strategy = keystone

[vnc]
enabled = True
# IP address compute instances listen
# specify this node's IP
server_listen = {{ inventory_hostname }}
server_proxyclient_address = {{ inventory_hostname }}
novncproxy_base_url = https://{{ openstack_master_ip }}:6080/vnc_auto.html

# Glance connection info
[glance]
# api_servers = https://dlp.srv.world:9292
api_servers = https://{{ openstack_master_ip }}:9292

[oslo_concurrency]
lock_path = $state_path/tmp

# Keystone auth info
[keystone_authtoken]
# www_authenticate_uri = https://dlp.srv.world:5000
# auth_url = https://dlp.srv.world:5000
# memcached_servers = dlp.srv.world:11211
www_authenticate_uri = https://{{ openstack_master_ip }}:5000
auth_url = https://{{ openstack_master_ip }}:5000
memcached_servers = {{ openstack_master_ip }}:11211
auth_type = password
project_domain_name = default
user_domain_name = default
project_name = service
username = nova
password = {{ service_password }}
# if using self-signed certs on Apache2 Keystone, turn to [true]
insecure = true

service_token_roles = service
service_token_roles_required = true

[placement]
# auth_url = https://dlp.srv.world:5000
auth_url = https://{{ openstack_master_ip }}:5000
os_region_name = RegionOne
auth_type = password
project_domain_name = default
user_domain_name = default
project_name = service
username = placement
password = {{ service_password }}
# if using self-signed certs on Apache2 Keystone, turn to [true]
insecure = true

[wsgi]
api_paste_config = /etc/nova/api-paste.ini

[oslo_policy]
enforce_new_defaults = true

[neutron]
auth_url = https://{{ openstack_master_ip }}:5000
auth_type = password
project_domain_name = default
user_domain_name = default
region_name = RegionOne
project_name = service
username = neutron
password = {{ service_password }}
service_metadata_proxy = True
metadata_proxy_shared_secret = {{ service_password }}
insecure = true

# add to the end
[service_user]
send_service_user_token = true
auth_url = https://{{ openstack_master_ip }}:5000
auth_type = password
project_domain_name = default
user_domain_name = default
project_name = service
username = nova
password = {{ service_password }}
insecure = true

[cinder]
os_region_name = RegionOne
